58.507 CVE tracked
796 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.507 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sorted descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2026-77886 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-77502 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-77501 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-77499 | HIGH 7.5 | microsoft windows_10_1607 Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-77498 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-77494 | HIGH 7.5 | microsoft windows_10_1607 Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-72949 | HIGH 7.5 | microsoft windows_11_23h2 Null pointer dereference in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-70065 | HIGH 7.5 | microsoft windows_10_1607 Missing release of memory after effective lifetime in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69881 | HIGH 7.5 | microsoft windows_10_1809 Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69809 | HIGH 7.5 | microsoft windows_11_23h2 Missing release of memory after effective lifetime in Active Directory Domain Services allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69760 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows Kerberos allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69744 | HIGH 7.5 | microsoft windows_11_24h2 Null pointer dereference in Windows Kerberos allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69631 | HIGH 7.5 | microsoft windows_10_1607 Integer overflow or wraparound in Windows DNS allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69588 | HIGH 7.5 | microsoft windows_11_23h2 Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69587 | HIGH 7.5 | microsoft windows_11_23h2 Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69428 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-69342 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-68887 | HIGH 7.5 | microsoft windows_10_1607 Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-67376 | HIGH 7.5 | microsoft sql_server_2017 Integer overflow or wraparound in SQL Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-66307 | HIGH 7.5 | microsoft skype_for_business_server Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-65681 | HIGH 7.5 | microsoft windows_10_1607 Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-59132 | HIGH 7.5 | microsoft windows_10_1607 Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-58627 | HIGH 7.5 | microsoft windows_10_1607 Uncontrolled resource consumption in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-57108 | HIGH 7.5 | microsoft .net Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny service over a network. | 1.2% | — |
| CVE-2026-56170 | HIGH 7.5 | microsoft .net Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. | 1.2% | — |